Vulnerability index

Browse CVEs

5,206 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
HIGH 7.5 CVE-2019-12412 A flaw in the libapreq2 v2.07 to v2.13 multipart parser can deference a null pointer leading to a process crash. A remote attacker could send a reque… Libapreq2 after 2.13 Fix from $1,9502020-11-19 CRITICAL 9.8 CVE-2020-11168 u'Null-pointer dereference can occur while accessing data buffer beyond its size that leads to access the buffer beyond its range' in Snapdragon Auto… Apq8009w Firmware Mitigation only Fix from $2,3002020-11-12 HIGH 7.5 CVE-2020-28344 An issue was discovered on LG mobile devices with Android OS 8.0, 8.1, 9.0, and 10 software. System services may crash because of the lack of a NULL … Android Mitigation only Fix from $1,9502020-11-08 HIGH 7.5 CVE-2020-28345 An issue was discovered on LG mobile devices with Android OS 10 software. The Wi-Fi subsystem may crash because of the lack of a NULL parameter check… Android Mitigation only Fix from $1,9502020-11-08 HIGH 7.5 CVE-2020-26213 In teler before version 0.0.1, if you run teler inside a Docker container and encounter `errors.Exit` function, it will cause denial-of-service (`SIG… Teler 0.0.1+ Fix from $1,9502020-11-06 HIGH 7.5 CVE-2020-26521 The JWT library in NATS nats-server before 2.1.9 allows a denial of service (a nil dereference in Go code). Fedora 2.1.9+ Fix from $1,9502020-11-06 HIGH 7.5 CVE-2020-5646 NULL pointer dereferences vulnerability in TCP/IP function included in the firmware of GT14 Model of GOT 1000 series (GT1455-QTBDE CoreOS version "05… Coreos after 05.65.00.bd Fix from $1,9502020-11-06 HIGH 7.5 CVE-2020-5655 NULL pointer dereferences vulnerability in TCP/IP function included in the firmware of MELSEC iQ-R series (RJ71EIP91 EtherNet/IP Network Interface Mo… Melsec Iq Rj71eip91 Firmware Mitigation only Fix from $1,9502020-11-02 MEDIUM 5.5 CVE-2020-14323 A null pointer dereference flaw was found in samba's Winbind service in versions before 4.11.15, before 4.12.9 and before 4.13.1. A local user could … Fedora 4.11.15 / 4.12.9+ Fix from $1,6002020-10-29 CRITICAL 9.8 CVE-2019-8572 A null pointer dereference was addressed with improved input validation. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort B… Airport Base Station Firmware 7.8.1+ Fix from $2,3002020-10-27 HIGH 7.5 CVE-2019-8588 A null pointer dereference was addressed with improved input validation. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort B… Airport Base Station Firmware 7.8.1+ Fix from $1,9502020-10-27 MEDIUM 6.5 CVE-2018-18508 In Network Security Services (NSS) before 3.36.7 and before 3.41.1, a malformed signature can cause a crash due to a null dereference, resulting in a… Network Security Services 2.14.0 / 3.36.7+ Fix from $1,6002020-10-22 MEDIUM 5.5 CVE-2020-24421 Adobe InDesign version 15.1.2 (and earlier) is affected by a NULL pointer dereference bug that occurs when handling a malformed .indd file. The impac… Indesign after 15.1.2 Fix from $1,6002020-10-21 HIGH 8.8 CVE-2020-1656 The DHCPv6 Relay-Agent service, part of the Juniper Enhanced jdhcpd daemon shipped with Juniper Networks Junos OS has an Improper Input Validation vu… Junos Mitigation only Fix from $1,9502020-10-16 HIGH 7.5 CVE-2020-25858EPSS 10% The QCMAP_Web_CLIENT binary in the Qualcomm QCMAP software suite prior to versions released in October 2020 does not validate the return value of a s… Qualcomm Mobile Access Point No fix yet Fix from $1,9502020-10-15 HIGH 7.5 CVE-2020-25866 In Wireshark 3.2.0 to 3.2.6 and 3.0.0 to 3.0.13, the BLIP protocol dissector has a NULL pointer dereference because a buffer was sized for compressed… Wireshark after 3.2.6 Fix from $1,9502020-10-06 MEDIUM 5.5 CVE-2020-5989 NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which it can dereference a NULL pointer, which may lead to denial of servi… Virtual Gpu Manager 8.5 / 10.4+ Fix from $1,6002020-10-02 MEDIUM 5.5 CVE-2020-26536 An issue was discovered in Foxit Reader and PhantomPDF before 10.1. There is a NULL pointer dereference via a crafted PDF document. Foxit Reader 10.1+ Fix from $1,6002020-10-02 MEDIUM 5.9 CVE-2020-15209 In tensorflow-lite before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, a crafted TFLite model can force a node to have as input a tensor backed by… Tensorflow 1.15.4 / 2.0.3+ Fix from $1,6002020-09-25 MEDIUM 5.3 CVE-2020-15204 In eager mode, TensorFlow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1 does not set the session state. Hence, calling `tf.raw_ops.GetSession… Tensorflow 1.15.4 / 2.0.3+ Fix from $1,6002020-09-25 MEDIUM 5.3 CVE-2020-15190 In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, the `tf.raw_ops.Switch` operation takes as input a tensor and a boolean and outp… Tensorflow 1.15.4 / 2.0.3+ Fix from $1,6002020-09-25 MEDIUM 5.3 CVE-2020-15191 In Tensorflow before versions 2.2.1 and 2.3.1, if a user passes an invalid argument to `dlpack.to_dlpack` the expected validations will cause variabl… Tensorflow Patch available Fix from $1,6002020-09-25 HIGH 7.4 CVE-2020-3552 A vulnerability in the Ethernet packet handling of Cisco Aironet Access Points (APs) Software could allow an unauthenticated, adjacent attacker to ca… Wireless Lan Controller 8.10.105.0 / 10.1.1.0+ Fix from $1,9502020-09-24 HIGH 8.6 CVE-2020-3407 A vulnerability in the RESTCONF and NETCONF-YANG access control list (ACL) function of Cisco IOS XE Software could allow an unauthenticated, remote a… Ios Xe Mitigation only Fix from $1,9502020-09-24 HIGH 7.5 CVE-2020-25821 peg-markdown 0.4.14 has a NULL pointer dereference in process_raw_blocks in markdown_lib.c. NOTE: This vulnerability only affects products that are n… Peg Markdown No fix yet Fix from $1,9502020-09-23 HIGH 8.8 CVE-2020-15964 Insufficient data validation in media in Google Chrome prior to 85.0.4183.121 allowed a remote attacker to potentially exploit heap corruption via a … Chrome 85.0.4183.121+ Fix from $1,9502020-09-21 MEDIUM 5.5 CVE-2020-24890 libraw 20.0 has a null pointer dereference vulnerability in parse_tiff_ifd in src/metadata/tiff.cpp, which may result in context-dependent arbitrary … Libraw No fix yet Fix from $1,6002020-09-16 MEDIUM 6.4 CVE-2020-25285 A race condition between hugetlb sysctl handlers in mm/hugetlb.c in the Linux kernel before 5.8.8 could be used by local attackers to corrupt memory,… Linux Kernel 5.8.8+ Fix from $1,6002020-09-13 MEDIUM 6.5 CVE-2019-20917 An issue was discovered in InspIRCd 2 before 2.0.28 and 3 before 3.3.0. The mysql module contains a NULL pointer dereference when built against maria… Debian Linux 2.0.28 / 3.3.0+ Fix from $1,6002020-09-11 MEDIUM 5.5 CVE-2020-11122 u'Null Pointer exception while playing crafted mkv file as data stream get deleted on secondary invalid configuration' in Snapdragon Auto, Snapdragon… Apq8098 Firmware Mitigation only Fix from $1,6002020-09-08